Skip to main content

Vendor/product archive

jenkins / reverse_proxy_auth CVEs

Beta · best-effort

3 CVEs tagged to jenkins / reverse_proxy_auth0 Critical, 1 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2023-32987

Published May 16, 2023

A cross-site request forgery (CSRF) vulnerability in Jenkins Reverse Proxy Auth Plugin 1.7.4 and earlier allows attackers to connect to an attacker-specified LDAP server using att…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-45384

Published Nov 15, 2022

Jenkins Reverse Proxy Auth Plugin 1.7.3 and earlier stores the LDAP manager password unencrypted in the global config.xml file on the Jenkins controller where it can be viewed by…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-1000150

Published Apr 5, 2018

An exposure of sensitive information vulnerability exists in Jenkins Reverse Proxy Auth Plugin 1.5 and older in ReverseProxySecurityRealm#authContext that allows attackers with lo…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1